Problem
The #2112 fix on branch feature/auto-2112 (handoff #2123) describes the in-order heredoc reading as built "where every body closes" in three places: the module docstring and the _heredoc_readings docstring in host-setup/agent-safety/claude/gh-write-guard.py, and the rule's paragraph in host-setup/agent-safety/README.md. The code requires closure only through the last data body, so it builds more readings than the text says. That errs in the safe direction, but the prose does not describe the code.
Done looks like
All three places state the condition the code applies, closure through the last data body, and no other text claims the stricter condition.
Found by the third local strict review pass of the #2112 fix, and filed as a follow-up per decision #2126.
Problem
The #2112 fix on branch
feature/auto-2112(handoff #2123) describes the in-order heredoc reading as built "where every body closes" in three places: the module docstring and the_heredoc_readingsdocstring inhost-setup/agent-safety/claude/gh-write-guard.py, and the rule's paragraph inhost-setup/agent-safety/README.md. The code requires closure only through the last data body, so it builds more readings than the text says. That errs in the safe direction, but the prose does not describe the code.Done looks like
All three places state the condition the code applies, closure through the last data body, and no other text claims the stricter condition.
Found by the third local strict review pass of the #2112 fix, and filed as a follow-up per decision #2126.